262111
|
- |
|
w3matter
|
revsense
|
Cross-site scripting (XSS) vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to inject arbitrary web script or HTML via the section parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6385
|
2017-08-17 10:29 |
2009-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262112
|
- |
|
1scripts
|
z1exchange
|
Cross-site scripting (XSS) vulnerability in showads.php in Z1Exchange 1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6386
|
2017-08-17 10:29 |
2009-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262113
|
- |
|
nexusjnr
|
jbook
|
SQL injection vulnerability in main.asp in Jbook allows remote attackers to execute arbitrary SQL commands via the username (user parameter).
|
CWE-89
SQL Injection
|
CVE-2008-6391
|
2017-08-17 10:29 |
2009-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262114
|
- |
|
1scripts
|
z1exchange
|
SQL injection vulnerability in showads.php in Z1Exchange allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6392
|
2017-08-17 10:29 |
2009-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262115
|
- |
|
3com
|
wireless_8760_dual-radio
|
The web management interface in 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point allows remote attackers to cause a denial of service (device crash) via a malformed HTTP POST request.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-6395
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262116
|
- |
|
celerondude
|
uploader
|
Cross-site scripting (XSS) vulnerability in account.php in Celerondude Uploader 6.1 allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: some of these det…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6396
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262117
|
- |
|
alcovebook
|
sgml2x
|
rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
CWE-59
Link Following
|
CVE-2008-6397
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262118
|
- |
|
eric_raymond
|
sng
|
sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled$$.png, (2) /tmp/decompiled$$.sng, and (3) /tmp/canonicalized$$.sng temporary f…
|
CWE-59
Link Following
|
CVE-2008-6398
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262119
|
- |
|
refbase
|
refbase
|
Cross-site scripting (XSS) vulnerability in refbase before 0.9.5 allows remote attackers to inject arbitrary web script or HTML via the headerMsg parameter to (1) show.php and (2) search.php. NOTE: …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6400
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262120
|
- |
|
extrosoft
|
thyme
|
Cross-site scripting (XSS) vulnerability in add_calendars.php in eXtrovert Software Thyme 1.3 allows remote attackers to inject arbitrary web script or HTML via the callback parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6404
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|